Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fwrj-8jg7-7jr6

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.

Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.

EPSS

Процентиль: 89%
0.03557
Низкий

8.1 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.1
ubuntu
около 9 лет назад

Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.

CVSS3: 8.1
nvd
около 9 лет назад

Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass in the validateCAS20 function when configured to authenticate against an old CAS server.

CVSS3: 8.1
debian
около 9 лет назад

Jasig phpCAS version 1.3.4 is vulnerable to an authentication bypass i ...

EPSS

Процентиль: 89%
0.03557
Низкий

8.1 High

CVSS3

Дефекты

CWE-287